Received: by 2002:a05:6a10:8c0a:0:0:0:0 with SMTP id go10csp2337708pxb; Fri, 5 Feb 2021 15:35:35 -0800 (PST) X-Google-Smtp-Source: ABdhPJwziqxX7BsJ4e1h/32vf9hQxM+rToaqvsEsAuTBydBSkuwCRgWM2BpjxPUQvyBb0rsN+6YJ X-Received: by 2002:a05:6402:270e:: with SMTP id y14mr5861074edd.322.1612568135434; Fri, 05 Feb 2021 15:35:35 -0800 (PST) ARC-Seal: i=1; a=rsa-sha256; t=1612568135; cv=none; d=google.com; s=arc-20160816; b=dNFCdcTUInMfpyhs9c57+GLmMa00tPY+hLLrNoJihWBWLoDPPcFh62aZaITzEHAZoF djKel3tKwQgNgl7q7KpttocR5irJk+k8mMozMGj99Dx79MmfxI+d8BlsOW90As4c8cJN v29uflDjMD6DTv/Q7tU3AP0phnaNT1lufz5Jq2mh926CYH14whqycANj5z0fVjRUFkiq wvxxzNgraBxg+LOFaCUQyzWnBkPNIyuqBK/3b8Gl55As9PuT54rBHmOijia+on25F8kA lCN+L70QxtWfoOagL0+n3/qW9VaA4EUrtNkmmCcuSFBVtI3eog4buaSjdhl41As9b0Oh IisQ== ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=arc-20160816; h=list-id:precedence:cc:to:subject:message-id:date:from:in-reply-to :references:mime-version:dkim-signature; bh=v+hzPa1F4JAM47t70Roqcz7crnnubahY7MUE4gPkyOc=; b=ovYmkKUYUziD4eDPzL5SroiFkwQ2HmGmKNUpi5M0+6CYJaJTehfK/33EkxD9pziYT6 IUMRwWt/rW35B08vQf9ezgXXFKRtwBaZHwF+0CSN/cG+2Vl+qHFajiLSU8Ea9X3Ld+wg NqwHNS+PW5rknu/igQqPzokc7A8MRhDaPRxDnJFZSVYNedppn65I2RrGAAXk5Zis/31A 5g/aVHWkiTXkPwl/8/OVn+27cTG3LdhyHGkPX/nhHl48dF+mm27kmax9E+P9M9wSXep9 HSMXhDGoqgbZGb/adYG2o8eLfeyUbXRbPezrxlJ1K/hYCsrdM/LZUt9wd89dTwXj16ub RNQQ== ARC-Authentication-Results: i=1; mx.google.com; dkim=temperror (no key for signature) header.i=@szeredi.hu header.s=google header.b=kJkmysqY; spf=pass (google.com: domain of linux-kernel-owner@vger.kernel.org designates 23.128.96.18 as permitted sender) smtp.mailfrom=linux-kernel-owner@vger.kernel.org Return-Path: Received: from vger.kernel.org (vger.kernel.org. [23.128.96.18]) by mx.google.com with ESMTP id i6si2866837ejb.565.2021.02.05.15.35.11; Fri, 05 Feb 2021 15:35:35 -0800 (PST) Received-SPF: pass (google.com: domain of linux-kernel-owner@vger.kernel.org designates 23.128.96.18 as permitted sender) client-ip=23.128.96.18; Authentication-Results: mx.google.com; dkim=temperror (no key for signature) header.i=@szeredi.hu header.s=google header.b=kJkmysqY; spf=pass (google.com: domain of linux-kernel-owner@vger.kernel.org designates 23.128.96.18 as permitted sender) smtp.mailfrom=linux-kernel-owner@vger.kernel.org Received: (majordomo@vger.kernel.org) by vger.kernel.org via listexpand id S230346AbhBEXd7 (ORCPT + 99 others); Fri, 5 Feb 2021 18:33:59 -0500 Received: from lindbergh.monkeyblade.net ([23.128.96.19]:41512 "EHLO lindbergh.monkeyblade.net" rhost-flags-OK-OK-OK-OK) by vger.kernel.org with ESMTP id S232556AbhBEOWu (ORCPT ); Fri, 5 Feb 2021 09:22:50 -0500 Received: from mail-pj1-x1029.google.com (mail-pj1-x1029.google.com [IPv6:2607:f8b0:4864:20::1029]) by lindbergh.monkeyblade.net (Postfix) with ESMTPS id 71C0CC0617AA for ; Fri, 5 Feb 2021 08:00:12 -0800 (PST) Received: by mail-pj1-x1029.google.com with SMTP id d2so4030606pjs.4 for ; Fri, 05 Feb 2021 08:00:12 -0800 (PST) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=szeredi.hu; s=google; h=mime-version:references:in-reply-to:from:date:message-id:subject:to :cc; bh=v+hzPa1F4JAM47t70Roqcz7crnnubahY7MUE4gPkyOc=; b=kJkmysqYHrZGs3+fpupO+SdH0WNgec3k/1YXBLzsjRhwhvSzX5Id9iqPsT171m5O6c Mosq/QNbyUac50Z0p0hPlSQJc7vKSAqT8m9NZF4kzwxa8D+zV80lXgcCOtu1PBc7ooW3 VAN8E3DhnankzQz81VQF9GJoXXeBaUWnPRd0c= X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20161025; h=x-gm-message-state:mime-version:references:in-reply-to:from:date :message-id:subject:to:cc; bh=v+hzPa1F4JAM47t70Roqcz7crnnubahY7MUE4gPkyOc=; b=YKzzWOfMG5GfUUEJ70CfZniOgCG5HVy0nzRliLzzmZfGZ0kYz73fsqUxLif+Zqr9iW UsO5MFlf87OrvlMIT6gPKwMmhGFhXhC98HYu+Lc6mije2EKmijfaipjP1xRhlrExg06B VqQNThyWCK+6Gl7vOhE5q0Ttm1ugvwfcepxFUzxbnczrTBHOg3Swj7LkrWWKEA4gAlDM vCAd4syIIrGJgU6QTGZ+B6Tx31a3y8x3fHHmLJp5dRde1mo02hE3Po43OsIeYw2smBzq hLz/DLot1HjBchxK6ux2EwIuqnO/rM7+ZJkCM01Vu6j+GLA87iQ7j5gks+XgyZirWAWL UduQ== X-Gm-Message-State: AOAM532eighiNTlZVtlkPc7a0mvn8RiOOGkNUO+mV/amBLcVobjsK58n ifp41yL1UxuhX9nKPOn+PFP6/l3zx15ctOpepEpFZ1nce+A= X-Received: by 2002:a67:c992:: with SMTP id y18mr3353078vsk.7.1612538917519; Fri, 05 Feb 2021 07:28:37 -0800 (PST) MIME-Version: 1.0 References: <20210203124112.1182614-1-mszeredi@redhat.com> <20210203124112.1182614-4-mszeredi@redhat.com> <20210204234211.GB52056@redhat.com> In-Reply-To: From: Miklos Szeredi Date: Fri, 5 Feb 2021 16:28:26 +0100 Message-ID: Subject: Re: [PATCH 03/18] ovl: stack miscattr To: Vivek Goyal Cc: Miklos Szeredi , linux-fsdevel@vger.kernel.org, linux-kernel@vger.kernel.org Content-Type: text/plain; charset="UTF-8" Precedence: bulk List-ID: X-Mailing-List: linux-kernel@vger.kernel.org On Fri, Feb 5, 2021 at 4:25 PM Miklos Szeredi wrote: > > On Fri, Feb 5, 2021 at 12:49 AM Vivek Goyal wrote: > > > > +int ovl_miscattr_set(struct dentry *dentry, struct miscattr *ma) > > > +{ > > > + struct inode *inode = d_inode(dentry); > > > + struct dentry *upperdentry; > > > + const struct cred *old_cred; > > > + int err; > > > + > > > + err = ovl_want_write(dentry); > > > + if (err) > > > + goto out; > > > + > > > + err = ovl_copy_up(dentry); > > > + if (!err) { > > > + upperdentry = ovl_dentry_upper(dentry); > > > + > > > + old_cred = ovl_override_creds(inode->i_sb); > > > + /* err = security_file_ioctl(real.file, cmd, arg); */ > > > > Is this an comment intended? > > I don't remember, but I guess not. Will fix and test. Sorry, yes, problem is that there's no file pointer available at this point. Fix is probably to introduce security_inode_miscattr_perm() hook. Thanks, Miklos